PT-2017-3435 · Dahua · Dahua Ip Camera

Ilya Smit

+1

·

Publicado

2017-02-20

·

Atualizado

2019-10-09

·

CVE-2017-3223

CVSS v3.1

10

Crítica

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Dahua IP camera products versions prior to V2.400.0000.14.R.20170713 Dahua IP camera products versions prior to DH IPC-Consumer-Zi-Themis Eng P V2.408.0000.11.R.20170621
Description The issue is related to a stack buffer overflow in the Sonia web interface of Dahua IP camera products. The sonia application, located at /usr/bin/sonia, provides the web interface and other services for controlling the IP camera remotely. It does not validate input data length for the password field, allowing a remote, unauthenticated attacker to submit a crafted POST request to the IP camera's Sonia web interface. This may lead to out-of-bounds memory operations, loss of availability, or remote code execution.
Recommendations For versions prior to V2.400.0000.14.R.20170713, update the firmware to a version that includes the patched Sonia web interface. For versions prior to DH IPC-Consumer-Zi-Themis Eng P V2.408.0000.11.R.20170621, update the firmware to a version that includes the patched Sonia web interface. As a temporary workaround, consider restricting access to the sonia application until a patch is available. Avoid using the password field in the affected API endpoint until the issue is resolved.

Correção

Stack Overflow

Buffer Overflow

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2018-00260
CVE-2017-3223

Produtos afetados

Dahua Ip Camera